Diligent senior level Splunk Engineer with vast experience supporting teams in a multitude of roles and capacities. Possessing soft skills paired with extensive technical expertise results in the highest standards of service delivery. Recognized for problem solving abilities and flexibility while working with a wide range of clients and issues. Adept at leading cross-functional teams to achieve operational goals on a sprint-oriented basis. Looking to contribute to a challenging environment as a technical-focused Splunk SME.
Overview
13
13
years of professional experience
1
1
Certification
Work History
Splunk Admin
Florida Blue Guidewell, Blue Cross Blue Shield
03.2024 - Current
Aided non-technical Splunk users by setting up macros/saved searches, developing data models and providing ad-hoc support
Worked with inputs.conf, outputs.conf, server.conf, props.conf, transforms.conf, serverclass.conf and other configurations on a daily basis
Configured and managed Syslog-ng servers
Responded to an abundance of technical issues and queries
Ingested data from various sources in a plethora of methods – Lookup tables, Universal Forwarder, HEC, DB Connect, Syslog, etc
Dashboard and alert creation for a multitude of clients
Managed weekend evening patch validations of all splunk and Cribl Linux servers
Ensured that all the onboarded data into the system follows the consistent naming convention by normalizing it with CIM at search time
Written hundreds of multi-layered SPL queries utilizing subsearches, eval expressions, lookups, regex, custom field extractions, REST and others
Used complex Regex Expressions for the purpose of extracting data from raw logs to create field value pairs as well as filtering data, hashing, sending to null queue, etc
Responsible for the management of the entire Splunk deployment - both from OS and Splunk side - which includes tasks such as: daily health checks of the system (through the GUI, CLI and the REST API calls), management and clean-up of the knowledge objects (optimization, reassigning ownership of orphaned ones, deletion of unused ones etc.), CPU/RAM/storage management, rebooting and patching red-hat servers and others day-to-day maintenance tasks
Performed weekly app reviews of my peers work to ensure consistency in knowledge objects and source code
Splunk Engineer
Bank of America
Charlotte, NC
10.2022 - 03.2024
Company Overview: Charlotte NC
Responsible for creating scripted inputs for CarMax Shelby team ingestions, alerting, and dashboard efforts
Responsible for the management of the entire Splunk deployment - both from OS and Splunk side - which includes tasks such as: daily health checks of the system (through the GUI, CLI and the REST API calls), management and clean-up of the knowledge objects (optimization, reassigning ownership of orphaned ones, deletion of unused ones etc.), CPU/RAM/storage management, rebooting and patching red-hat servers and others day-to-day maintenance tasks
Ensured that all of the onboarded data into the system follows the consistent naming convention by normalizing it with CIM at search time
Written hundreds of multi-layered SPL queries utilizing subsearches, eval expressions, lookups, regex, custom field extractions, REST and others
Migrated management components (DS, CM, DP, LM, MC) from one set of servers to another while guaranteeing almost non-existent interruption to Splunk users
Integrated dozens of tools with Splunk, including but not limited to: VMware, Citrix, Ironstream, Kafka, Sysmon, AWS, Tenable, Slack
Charlotte NC
Splunk Engineer
Ally Financial
Charlotte, NC
10.2019 - 10.2022
Company Overview: Charlotte NC
Developed a series of highly interactive and sophisticated dashboards for a wide range of teams and purposes, e.g
Sterling File Gateway dashboard which included information about FTPS successful session ends, FTPS successful authentication, SFTP adapter session limit exceeded and other relevant information; Backup Images dashboard for Unix team to cover relevant metrics surrounding VM backup images; Agent Overview dashboard for the overall visibility of all the Unix/windows agents throughout the entire infrastructure - their states, service owners, network affiliation, health status etc
Responsible for the management of the entire Splunk deployment - both from OS and Splunk side - which includes tasks such as: daily health checks of the system (through the GUI, CLI and the REST API calls), management and clean-up of the knowledge objects (optimization, reassigning ownership of orphaned ones, deletion of unused ones etc.), CPU/RAM/storage management, rebooting and patching red-hat servers and others day-to-day maintenance tasks
Performed weekly scans for vulnerabilities and weaknesses on Splunk servers and remediated any possible security threats (e.g
Secret and pass4symmkey) are properly stored and managed
Designed, refined and implemented a build-out plan of a new infrastructure in a span of four months: the project’s goal was to set up of more than 80 Splunk components over a distributed, multi-site clustered environment to accommodate for future integration of security, DevOps, and SysOps tool throughout the enterprise’s domains and teams
Optimized the environment’s health and efficiency by setting up cascading knowledge bundle replication, multi-deployment server strategy, indexer discovery, index parallelization, higher tsidxWritingLevel and other optimization methods
Developed a set of throttled, cron-scheduled alerts for Middleware Engineering team and Puppet Team to ensure that they have an appropriate operational visibility into any outstanding events within their environment
Migrated management components (DS, CM, DP, LM, MC) from one set of servers to another while guaranteeing almost non-existent interruption to Splunk users
Integrated dozens of tools with Splunk, including but not limited to VMware, Citrix, Ironstream, Kafka, Sysmon, AWS, Tenable, Slack, ITSI, SAS
Ensured that all the onboarded data into the system follows the consistent naming convention by normalizing it with CIM at search time
Written hundreds of multi-layered SPL queries utilizing subsearches, eval expressions, lookups, regex, custom field extractions, REST and others
Charlotte NC
Splunk Engineer
United Health Group
Minnetonka, MN
05.2017 - 10.2019
Company Overview: Minnetonka, MN
Responsible for the management of data onboarding within the IT Process Automation domain: set up and hosted bi-weekly “catch-up” calls for Splunk SMEs, permitted new inputs based on capabilities of the infrastructure, disabled unused ones, established standards for retention policies and naming conventions of apps and indexes, increased licenses and scaled out the deployment to accommodate for growth
Onboarded data through Universal/Heavy forwarders, DBconnect, Syslog, HEC, scripted inputs, and API calls
Set up disaster recovery tests on multi-site clustered environment simulating an failover of entire sites
Built, configured and managed wide-range of Splunk components such as UFs, HFs License Masters, Deployment Servers, Cluster Masters, Deployers, Monitoring Consoles, Indexers, Search Heads
Controlled LDAP role-based access through authorize.conf and authentication.conf
Utilized sophisticated dashboard creation practices - base searches, advanced XML and CSS customizations, connecting panels to lookups and loadjobs, REST calls etc
- delivering well refined views and visualizations
Masked sensitive PII/PHI data
Performed 200+ of field extractions at search-time
Aided non-technical Splunk users by setting up macros/saved searches, developing data models and providing ad-hoc support
Worked with inputs.conf, outputs.conf, server.conf, props.conf, transforms.conf, serverclass.conf and other configurations on a daily basis
Configured and managed Syslog-ng servers
Responded to an abundance of technical issues and queries
Minnetonka, MN
Scrum Master
Verizon
Silver Spring, MD
04.2015 - 05.2017
Company Overview: Silver Spring MD
Key component in standing up Interoperability team in Charlotte, NC
Vital Develop alerts and timed reports Develop and manage Splunk applications
Provide leadership and key stakeholders with the information and venues to make effective, timely decisions
Provide backup support for other solutions network security solutions
Ensuring support tickets are fully updated with the most current data
Provide proper escalations and handoffs to management and support staff
Establish and ensure adoption of best practices and development standards
Communicate with peers and supervisors routinely, document work, meetings, and decisions
Work with multiple data sources
In removal of impediments encountered by the Scrum Team
Silver Spring MD
Scrum Master
United Health Group
Baltimore, MD
04.2013 - 04.2015
Company Overview: Baltimore MD
Facilitator of Scrum Events
Vital in removal of impediments encountered by the Scrum Team
Participant in bi-weekly Scrum guild meeting
Ensured artifact transparency between Scrum Team, Stakeholders, and others involved in product delivery
Coached Scrum Team on the rules, roles, events and artifacts within the Scrum Framework
Utilized key Scrum metrics (Burndown, Velocity) to help deliver committed work
Developed automation test scripts for functional and regression testing of web applications using UFT
Maintained and analyzed large volumes of regression testing results
Performed accessibility testing ensuring screen reader, tabbing order, and focus order of web applications
Worked with developers to remediate bugs found in testing results
Consistently worked alongside Product Owner to ensure proper backlog grooming and story prioritization
Coached team members on agile/scrum principles
Ensured cross-dependencies with other teams are included in the backlog grooming process
Expertly promoted a sense of progressive independence within team
Managed scrum boards (Physical and Virtual)
Trained new team members and transitioned team to agile within scrum framework
Updated agile tracking systems to improve transparency of product backlog and sprint backlog
Improved team morale by enhancing communication between development team members, product owner, and stakeholders
Researched and proposed processes and tools to drive innovation and increase productivity
Trained scrum master’s for two other scrum teams
Servant leader focused on the needs of up to three scrum teams
Acted as team representative during scrum of scrums to share high level updates on team progress and impediments to other teams
Helped scrum team solve problems internally without providing direct solutions
Scrum master for 10 major projects, all delivered on average 10% below budget
Showed ability to challenge status quo and enable new ways of thinking and working
Worked with scrum team members to determine the appropriate minimum viable product for delivery
Baltimore MD
QA Automation Engineer
SunTrust
Richmond, VA
03.2012 - 03.2013
Company Overview: Richmond VA
Used HP Quality Center to log defects and track resolution till the closing of defect after retesting
Created Keyword Driven, Data-Driven, and Hybrid automation frameworks using VbScript and HP UFT
Defined and implemented test metrics to determine coverage and effectiveness
QTP/UFT to automate functions for the web application under test
Utilized HP Quality Center for Test Planning, Test Case writing, Test Execution and Requirement Mapping with Test Cases
Performed accessibility testing on web application with NVDA as well as mobile applications using Android and iPhone built-in screen reader tools
Richmond VA
Education
Bachelor of Science - Mechanical Engineering
Omdurman University
Sudan
Bachelor of Business Administration -
University of South Asia
UK
Skills
Redhat Linux
Splunk Administration
XML/Regex
Splunk TA
Splunk Framework
Cribl Log Stream
Data Analysis/Research
Software Automation
Safeguard PII Information
Log Onboarding
Microsoft SQL Server Database
Jira
VBScript Programming Language
Java
Data Verification and Validation
Selenium
LeSS Framework
HP UFT/QTP
SAFe Framework
Software Development Life Cycle (SDLC)
Servant Leadership
License management
Cluster management
Splunk administration
Index management
Threat intelligence
Advanced searching
App deployment
Report generation
Data onboarding
IT operations
Role-based Access control
Dashboard creation
Regular expressions
Splunk development
Network monitoring
Knowledge objects
Capacity planning
Incident response
API integration
SIEM integration
Certification
Certified Splunk Core User
Certified Splunk Power User
Certified Splunk Admin
Certified Splunk Certified Architect
Redhat Linux
CompTIA Security +
Professional Scrum Master (PSM) 1
Area Of Emphasis
Redhat Linux
Splunk Administration
XML/Regex
Splunk TA
Splunk Framework
Cribl Log Stream
Data Analysis/Research
Software Automation
Safeguard PII Information
Log Onboarding
Microsoft SQL Server Database
Jira
VBScript Programming Language
Java
Data Verification and Validation
Selenium
LeSS Framework
HP UFT/QTP
SAFe Framework
Software Development Life Cycle (SDLC)
Servant Leadership
Timeline
Splunk Admin
Florida Blue Guidewell, Blue Cross Blue Shield
03.2024 - Current
Splunk Engineer
Bank of America
10.2022 - 03.2024
Splunk Engineer
Ally Financial
10.2019 - 10.2022
Splunk Engineer
United Health Group
05.2017 - 10.2019
Scrum Master
Verizon
04.2015 - 05.2017
Scrum Master
United Health Group
04.2013 - 04.2015
QA Automation Engineer
SunTrust
03.2012 - 03.2013
Bachelor of Science - Mechanical Engineering
Omdurman University
Bachelor of Business Administration -
University of South Asia
Similar Profiles
Heath WesenbergHeath Wesenberg
Business Support Analyst II at Florida Blue - Blue Cross Blue Shield Of FloridaBusiness Support Analyst II at Florida Blue - Blue Cross Blue Shield Of Florida
Customer Service Advocate at Blue Cross Blue Shield of Florida, Florida BlueCustomer Service Advocate at Blue Cross Blue Shield of Florida, Florida Blue